CVE-2022-48341
EUVD-2022-5104123.02.2023, 06:15
ThingsBoard 3.4.1 could allow a remote authenticated attacker to achieve Vertical Privilege Escalation. A Tenant Administrator can obtain System Administrator dashboard access by modifying the scope via the scopes parameter.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| thingsboard | thingsboard | 3.4.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration